CVE-2018-5528: Input Validation
Published Jun 27, 2018
·Updated
Under certain conditions, TMM may restart and produce a core file while processing APM data on BIG-IP 13.0.1 or 13.1.0.4-13.1.0.7.
Affected Software
2 affected components
F5 BIG-IP Access Policy Manager>=13.1.0.4<=13.1.0.7
F5 BIG-IP Access Policy Manager=13.0.1
Event History
Jun 27, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Data Sourced
via NVD·08:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-5528?
CVE-2018-5528 has a medium severity rating due to potential service disruption caused by TMM restarts.
2
How do I fix CVE-2018-5528?
To resolve CVE-2018-5528, upgrade your F5 BIG-IP Access Policy Manager to version 13.1.0.8 or later.
3
What does CVE-2018-5528 affect?
CVE-2018-5528 affects F5 BIG-IP Access Policy Manager versions 13.0.1 and 13.1.0.4 through 13.1.0.7.
4
What are the consequences of not addressing CVE-2018-5528?
If CVE-2018-5528 is not addressed, it may lead to unexpected TMM restarts and potential downtime for applications.
5
Is there a workaround for CVE-2018-5528?
There are no official workarounds for CVE-2018-5528, so it's essential to apply the recommended updates.